Product
Microsoft Authentication Broker App
- First Reported
- Sep 15, 2026
- Latest Reported
- Sep 15, 2026
Reported Context (1)
- request, and notably, uses the specific App ID, 29d9ed98-a469-4536-ade2-f981bc1d605e (Microsoft Authentication Broker App) in this request: GhostCode Phishing Kit Abuses Microsoft Device-Code Authentication to Steal Account Tokens
Threat Actors (1)
MITRE ATT&CK (9)
Vendors (3)
Products (7)
Tools (2)
Industries (2)
Countries (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.